Previous Topic: Defects Fixed in 12.52Next Topic: Documentation


Defects Fixed in 12.52 SP1

Policy Server Displays an Exception While Processing Active Exressions (63871)

Symptom:

Policy Server displays the following exception while processing active expressions:

java.util.MissingResourceException

Solution:

This issue is fixed.

STAR issue: 21778610-01

Policy Server Fails to Reconnect to Audit Database (63635)

Symptom:

If Policy Server connects to an audit database and the load balancer drops the connection due to inactivity, Policy Server cannot recover the connection.

Solution:

This issue is fixed.

STAR issue: 21763138-01

Example of OverlookSessionForMethodUri is Incorrect (55896)

Symptom:

The example of OverlookSessionForMethodUri contains extra spaces.

Solution:

The documentation is updated to remove the extra spaces from the example.

STAR: 21747796-01

Browser Displays an HTTP 500 Error (55837)

Symptom:

The browser displays an HTTP 500 error when it is redirected to a realm that is protected by an SAML 2.0 authentication scheme.

Solution:

This issue is fixed.

STAR: 21745941-01

Information on Managing Indices During Parallel Environment Configuration is Missing (55685)

Symptom:

The documentation does not mention how to manage indices when migrating r6.x policies during a parallel environment configuration.

Solution:

The documentation is updated.

STAR: 21697346-01

The Advanced Authentication Configuration Method in Console Mode is Missing (55674)

Symptom:

The Policy Server installation content does not describe the advanced authentication configuration during the console mode installation.

Solution:

The documentation is updated with the required information.

STAR: 21708422-01

Error on Accessing Resource after Idle Timeout (55576)

Symptom:

Policy Server reports 107 error when a resource is accessed after idle timeout.

Solution:

This issue is fixed.

STAR issue: 21715653-1

Policy Server Terminates Abruptly During Shutdown (55570)

Symptom:

The Policy Server terminates abruptly while shutting down.

Solution:

This is no longer an issue.

STAR Issue: 21553554-1

Encryption Key Incompatibility (55463)

Symptom:

If the encryption key in the EncryptionKey.txt file contains null characters, the file from r6.0, r12.0 SP3, and r12.5 is incompatible with r12.51 CR01.

Solution:

This issue is fixed.

STAR issue: 21647033-01

smaphistory is Not Updated During the Forgot Password Service (55422)

Symptom:

The password history attribute, smaphistory, is updated only during the Change Password service but not in the Forgot Password service.

Solution:

This issue is fixed.

STAR issue: 21660317-1

Policy Server Service Terminates Abnormally (55358)

Symptom:

When shutting down the Policy Server service (SmPolicySrv), smpolicysrv.exe terminates abnormally.

Solution:

This is no longer an issue.

STAR Issue: 21513737-1

XPSSweeper Generates a Core (55357)

Symptom:

XPSSweeper generates a core on Solaris 10.

Solution:

This issue is resolved.

STAR issue: 21626430-01

The Allow Nested Group Option is Not Displayed (55353)

Symptom:

If an AD namespace is used for a user directory, the Administrative UI does not display the Allow Nested Group option.

Solution:

This issue is fixed.

STAR: 21730158-1

Import of smpolicy.xml Fails (55352)

Symptom:

Policy Server fails to import the smpolicy.xml file with the following error:

(ERROR) : [CA-SM-Assert] Assert failed: String && *String

Solution:

The issue is resolved.

STAR: 21602440-01

Policy Server Terminates Abruptly (55316)

Symptom:

Policy Server terminates abruptly due to buffer overflow when certificate authentication scheme is used.

Solution:

This issue is fixed.

STAR issue: 21595114-1

The Authentication and Authorization Options are Disabled (54947)

Symptom:

The authentication and authorization options are disabled for selection during an application component configuration.

Solution:

The issue is resolved.

STAR: 21615280-01, 21617878-02

An Exception Occurs when SP Initiates an SLO Request (54466)

Symptom:

If the SP initiates an SLO request in an IDP to SP partnership, the following exception is thrown at the IDP:

java.lang.IndexOutOfBoundsException

Solution:

This issue is fixed.

STAR: 21565949-1

WS-Federation Response has Incorrect Time Format (54455)

Symptom:

The following tags in the Lifetime tag of the WS-Federation response are using the server locale time format instead of the UTC time format.

Solution:

This is no longer an issue.

STAR Issue: 21566713-01

Access Log is Not Updated in Real Time (54427)

Symptom:

When audit data is saved, the access log written to the disk is saved at three seconds interval instead of real time.

Solution:

This issue is fixed.

STAR: 21579771-1

Incorrect Error Message Displayed During Password Change (54263)

Symptom:

While trying to change the password if the Policy Server is running APS, an incorrect error message is displayed.

Solution:

This is no longer an issue. The error message has been corrected.

STAR Issues: 21545451-01, 21507336-02

Policy Server Terminates Abruptly with Core Dump (54203)

Symptom:

The Policy Server terminated abruptly with the call stack pointing to the CRefCounter::Release and delete() function.

Solution:

This is no longer an issue.

STAR Issue: 21412563-1

Unable to Set Path for Policy User (53882)

Symptom:

Unable to set the path for a policy user of a domain using the Perl CLI API with an appropriate method.

Solution:

This is no longer an issue. A new Perl CLI API SetPath method has been added to set the path for a policy user of a domain.

STAR Issue: 21463269

Spike in Assertion Signature Threads (52996)

Symptom:

Spike of assertion signature threads results in all the threads hanging at the same trace line state.

Solution:

This is no longer an issue.

STAR Issue: 21176050-1

Count of Currently Active Threads Incorrect (52932)

Symptom:

The count of currently active threads is reported incorrectly.

Solution:

This issue is fixed, a new counter, busythreads, is added.

STAR issue: 21511984-1

Documentation Update for Enable AD as a User Store (181087)

Symptom:

In the Policy Server Installation Guide the section describing the steps to enable AD as a user store required updating.

Solution:

The section was updated using a scenario that was previously published as a TechNote (81220).

Star issue 21656814-1

Documentation Error for Authentication Method Group UI (181220)

Symptom:

For the topic Partnership Federation, Configure Social Sign-on, Create an Authentication Method Group:

1. Navigate to Federation, Authn Method Groups

should have been:

1. Navigate to Infrastructure, Authencation, Authn Method Groups.

Solution:

This error has been corrected.

Star issue 21657962-1

Documentation Error: Directory Listing For SecureID HTML Form (184814)

Symptom:

The sdconf.rec file was incorrectly listed as residing in /siteminder/lib. The correct location is /siteminder/bin.

Solution:

This error has been corrected.

Star issue 21771520-1

Documentation Update for SM Performance on Red Hat (181331)

Symptom:

The Policy Server Installation Guide recommended increasing entropy on Red Hat 6 by setting a symbolic link. The text did not make clear that not making this setting has a significant effect on the response time to requests at runtime.

Solution:

The topic has been updated.

Star issue 21661628-1

Documentation Error: Mistyped Variable Unresolved (181424)

Symptom:

In the topic Legacy Federation, Configure SM as SAML 2.0 IdP, Indicate SSO from IdP or SP, Query Parameter Processing by a SM IdP:

Mistyped Author-It variable, <stnmdr>, did not resolve.

Solution:

Variable changed to CA SiteMinder®.

No Star issue.

Documentation Error in ODBC Database Overview (181891)

Symptom:

In the Policy Server Configuration Guide, the topic on ODBC Database Overview had an erroneous note about using OCI instead of ODBC to connect to the user directory.

Solution:

This note has been removed.

Star issue 21697349-1

Administrative UI Version Mismatches Policy Server Version (183994)

Symptom:

The following components appeared after unzipping the Installers:

1. Siteminder Policy Server R12.52-CR01
2. Siteminder WAM UI Installer and Pre-Requisite Installer- R12.52

After installing the Policy Server and WAM UI and then Registering the WAM UI with Policy Server, the following error appeared:
++++++++++++++++++
SiteMinder Administrative UI (Version 12.52.0000.142) mismatches the Policy Server (Version 12.52.0001.154)

Solution:

This problem has been corrected.

Star issues 21748545-1;21747060-1;21742480-1

Policy Server Creates Core Dump during failover (183017)

Symptom:

Customer has two policy stores configured to load balance (sat1svdap001 and sat1svdap003). When sat1svdap001 is stopped, policy server crashes and creaes a coredump, restarts and connects to sat1svdap003. The reverse order works fine.
When sat1svdap003 is stopped, the failover to sat1svdap001 proceeds without error.


Symptom:

This problem has been corrected.

Star issue 21723358-01

XPSSweeper Error (181643)

Solution:

Running XPSSweeper command after configuring Federation partnership throws some errors related to user policy and Federation users.

Symptom:

This problem has been corrected.

Star issues 21694002;01+21734080;01

Realm Associations Description Was Empty (181488)

Symptom:

In the Infrastructure, Agents, Modify an Agent dialog in the Administrative UI, there are several boxes of associated values (if they exist). When they do exist, for example the Realm Associations and Agent Group
Associations, the realm associations' description was empty (even though a description
exists for each realm).

Solution:

This problem has been corrected.

Star issue 21649590-01

Administrative UI Failure with java.lang.StackOverflowError (179026)

Symptom:

Administrative UI fails with java.lang.StackOverflowError when administrator tries to create more than one realm in a domain.

Solution:

This problem has been corrected.

Star issue 21607852-1

Invalid Values in RADIUS Authentication Response (178573)

Symptom:

RADIUS response was returning invalid values for IP addresses.

Solution:

This problem has been corrected.

Star issue 21579100-1

Character Limit in SMACCESS.log File (177754)

Symptom:

When an Audit entry exceeds 1024 chars, the chars beyond 1024 are removed. There is no <CR><LF>, and as a result the subsequent record is concatenated
onto the end of the previous line, rather than starting on a new line. The
problem appears to occur when a line exceeds 1024 characters.

Solution:

This problem has been corrected.

Star issue 21557894;2

Errors in Domain Policy Setting (177554)

Symptom:

When updating values in a policy, the following problems occurred :

Solution:

These problems have been corrected.

Star issue 21527707-1

Password Services Was Not Triggered with Custom Auth Scheme (177537)

Symptom:

With a custom authentication scheme, the password policy was not triggered.

Solution:

This problem has been corrected.

Star issue 21575910-1

User Unable to View Certificates in Administrative UI After Policy Server Restart (175381)

Symptom:

The customer is not able to view Certificates imported into the Certificate data store in the following scenario:

1. Server A hosting WAM UI (embedded JBOSS)
2. Server B hosting Policy server.
3. WAMUI (Server A) connects to server B
4. Restart Policy server (B).
5. Login to WAMUI and go to Infrastructure - > X509 Cert. Mgmt -> Trusted
Certs & Private Ekys

Solution:

This problem has been corrected.

Star issue 21527502-1

Database Type Selectable Menu Not Visible in smjdbcsetup.sh Command (173755)

Symptom:

The database type selectable menu (SQL or Oracle) in smjdbcsetup.sh command was not visible.

Solution:

This problem has been corrected.

Star issue 21498329-01

Auth/Az Requests Failed in SmTest Advance Playback (172968)

Symptom:

While performing stress or load testing using the SmTest tool, the authentication and authorization requests failed.

Symptom:

This problem has been corrected.

Star issue 21472318-1

Nested Groups with AD Namespace (171652)

Symptom:

The nested group option was available in LDAP namespace, but not in the AD namespace.

Solution:

This option has been added.

Star issue 21439371-1

SmdsLdapConnMgr Bind-Init Error in Logs (169288)

Symptom:

A customer stated that this error was causing the logs to fill up quickly. Everything otherwise appeared to function properly.

Solution:

This problem has been corrected.

Star issues 21349301;1+ 21277788;1

Documentation Update to Correct Session Assurance Procedure (181072)

Symptom:

Minor change to a step listed in Policy Server Guides › Policy Server Configuration Guide › Enhanced Session Assurance with DeviceDNA™ › How to Configure Enhanced Session Assurance with DeviceDNA™

Solution:

This update has been made.

Star issue 21657937;1

Administrative UI Search Failure (179822)

Symptom:

Unable to do specific search for User ID (sAMAccountName) in the Administrative UI at Administration, Admin UI, Configure Administrative Authentication, Select Super User.

Solution:

This problem has been corrected.

Star issue 21624479-1

Administrative UI JDK Version Required Updating (179817)

Symptom:

A customer has a strict Audit policy that requires product versions to be free of security vulnerabilities, and in the worst case the Audit team can force a product to be removed from the environment if this is not met.

The Administrative UI had a version of Java from 2011. The customer requested that each CR be updated with the latest version of the JDK.

Solution:

The JDK has been upgraded.

Star issue 21624938-1

XPSImport -validateOnly Overwrites the SMRegistry (179084)

Symptom:

Running XPSImport -validateOnly of an export file that was generated with the -xb switch overwrites the Registry on the Policy Server where the validation is run.

Solution:

This problem has been corrected.

Star issue 21555333;1

Administrative UI Gave Null Pointer Exception after Policy Server Restart (175478)

Symptom:

A customer has created application object in the Administrative UI. After modifying the application object, Policy Server is restarted. When the customer tried to access the application, an object null pointer exception appeared. The customer had to restart the Administrative UI with each null pointer exception.

Solution:

Fixed indirectly through CQ 173019.

Star issue 21498068-1

Policy Server Unresponsive When the Policy Store Directory Server Is Down (174218)

Symptom:

The customer configured two directory servers as policy stores (in SMCONSOLE) in failover mode. If the second directory server in the list was down, the Policy Server becomes unresponsive when connecting to the policy store This failure occurs even when the first directory server policy store is up and running.

Solution:

This problem has been corrected.

Star issue 21477725-6

Failure in Sort by Subtype in Agent Instances (173590)

Symptom:

When sorting by Subtype, the sort was incorrect..Sorting by Trusted Host Name generated a.NullPointerException message.

Solution:

This problem has been corrected.

Star issue 21497268;1

Authentication Context Template Did Not Appear in the Administrative UI (173304)

Symptom:

Authentication Context Template does not appear in drop down list of IDP to SP partnership in "SSO and SLO" tab.

Solution:

This problem has been corrected.

Star issue 21493257-1

Password Policy Constraint Enforced in Administrative UI (173210)

Symptom:

The documentation states that the password the user specifies is not constrained by any password policy. The password is recorded in the user's password history. But the password change from the Administrative UI is constrained by the password policy.

Solution:

This problem has been corrected.

Star issue 21487255-1

SSL Selection in Administrative UI Could Not Be Cleared (171975)

Symptom:

Reproduction steps:

1) Login to WAMUI
2) Click on Policies
3) Edit any domain-->> click on Variable-->> Click on Create new Variable-->> Select Web Service as Variable type from the drop Down
4) Provide all the required details and make the SSL as checked.
5) Click submit, once the task is completed, click on Edit again.
6) The SSL selection cannot be cleared.


Solution:

This problem has been corrected.

Star issue 21453762-1

Error: [General] Reference to Privileged Expression "{0}" While Creating SET Expression (171974)

Symptom:

The definition for the SET function Expression specifies the capability to create the Attribute in the user directory. When creating an attribute mapping list, this functionality was not there.

Solution:

This problem has been corrected.

Star issue 21450779-1

LDAP Bind Error in SMPS Log (170511)

Symptom:

The customer was getting a SMDSLDAPCONNMGR BIND error message while clicking on "View Contents" in the user directory page.

Solution:

This problem has been corrected.

Star issue 21395598-1

Missing Description Option for Search on Domains, Realms, Rules, and Responses (166526)

Symptom:

This search was not working as expected

1) Click Policies

2) Click Domain

3) Click Domains on left column

You are at the Search for an object of type Domain screen

4) Now click drop where you would expect to see Name and Description as choices. Only Name is visible.

5) Repeat steps for Realms, Rules, Responses.

Solution:

This problem has been corrected.

Star issue 21284496;2

Event Processing Impaired When Adding a Second Component to an Application (166376)

Symptom:

Process Authentication Events and Process Authorization Events were cleared or all components wereremoved when adding a second component to an application.

Solution:

This problem has been corrected.

Star issue 21276259;1

Creation of the FIPS Environment Variable Now Automatic (179935)

Solution:

A customer requested that the creation of the FIPS environment variable be automated, rather than a manual step in the registration of the Administrative UI.

Symptom:

This enhancement has been made.

Star issue 21631917-1